Vulnerability CVE-2024-35350


Published: 2024-05-30

Description:
A vulnerability has been discovered in Di??o Physics School Assistant version 2.3. The vulnerability impacts an unidentified code within the file /admin/?page=borrow/view_borrow. Manipulating the argument id can result in SQL injection.

 References:
https://vuln.pentester.stream/pentester-vulnerability-research/post/2298666/vuln6-blind-sql-injection-time-based

Copyright 2026, cxsecurity.com

 

Back to Top